Wednesday 28 September 2011

Security when buying online

When looking to buy from an online baby gifts web store, ensure that they are adhering to the security standard for credit card information. This is called PCI DSS, otherwise known as the Payment Card Industry Data Security Standard.

This is basically a list of 6 objectives and a number of requirements in order to ensure customer’s credit card data is kept secure. It covers areas such as Vulnerability such as ensuring antivirus software is installed on servers, Protecting card holder data by using encryption methods, Networking infrastructure should be secured by a firewall and the default manufacturer password changed,   Access control methods to ensure all users have an individual ID associated with their account and instil a need to know basis. Monitoring and testing of this should be completed and this should all be documented within a security policy.